pbvex-deployment
Pass
Audited by Gen Agent Trust Hub on Sep 9, 2026
Risk Level: SAFEPRIVILEGE_ESCALATIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: The skill includes explicit instructions for the agent to never ask the user for passwords, tokens, or encryption keys in the chat, effectively preventing accidental credential exposure in conversation logs.\n- [PRIVILEGE_ESCALATION]: The guide promotes security best practices by instructing the user to create dedicated non-root service accounts and private data directories for hosting the application.\n- [COMMAND_EXECUTION]: Provides standard deployment and configuration commands (e.g.,
npx pbvex deploy) intended for the user to execute manually in their controlled environment.\n- [EXTERNAL_DOWNLOADS]: References standard Node.js packages (pbvex,@pbvex/server) and official release archives necessary for the deployment, with no suspicious or obfuscated sources detected.
Audit Metadata